This is expected, the cert was added to the default list of NSS CA with all trust bits disabled, to ensure the rogue certificate that was generated is never usable.
See https://bugzilla.mozilla.org/show_bug.cgi?id=471715 ** Bug watch added: Mozilla Bugzilla #471715 https://bugzilla.mozilla.org/show_bug.cgi?id=471715 -- "MD5 Collisions Inc." (expried) fake SSL certificate is installed as standard https://bugs.launchpad.net/bugs/482751 You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs